Security News

How to run a security audit on AlmaLinux with Lynis
2022-03-21 16:07

Lynis is more than just a rootkit detector, as it makes it possible to run detailed auditing of your Linux servers for numerous security issues as well as misconfigurations. I want to walk you through the process of installing Lynis and running a scan on AlmaLinux.

How SSPM Simplifies Your SOC2 SaaS Security Posture Audit
2022-02-03 02:19

As part of a SOC2 audit, it is necessary to conduct security checks across the company's SaaS stack that will look for misconfigured settings such as detection and monitoring to ensure continued effectiveness of information security controls and prevent unauthorized/ inappropriate access to physical and digital assets and locations. If you're beginning or on a SOC2 audit journey, then an SSPM solution can streamline the process and shorten the time it takes to pass a SOC2 audit successfully, fully covering your SaaS Security posture.

Audit Your Active Directory with a free, read-only scan from Specops
2022-01-12 03:45

Specops Password Auditor is a read-only tool that scans your Active Directory and identifies password-related vulnerabilities. The collected information generates multiple interactive reports containing user and password policy information.

How can organizations ease audit overload?
2021-12-09 04:30

A research from Vanson Bourne examines how financial services are faring with the ever-increasing challenge of audit overload. The study, which surveyed 200 U.S. IT security professionals in the financial services industry, revealed that 97 percent financial institutions experience challenges when working on audits. The state of the financial services' audit process Financial organizations spend an average of 71 working days each quarter responding to audit evidence requests, have an average of 13 different IT security compliance and privacy regulations with which they must comply, and have an average of 54 dedicated people who work on IT security compliance and/or privacy regulations.

Internal audit leaders expect new risks to emerge post-pandemic
2021-11-16 04:30

COVID-19 stretched organizational resources and unleashed new risks on a global basis, prompting an ongoing pivot by internal audit departments to address the evolving challenges, according to a survey by AuditBoard. "COVID-19 created what is arguably the greatest disruption for organizations as well as for internal auditors, due to their enterprise-wide role," said Richard F. Chambers, AuditBoard Senior Internal Audit Advisor, who authored the report.

Top risks auditors should cover in their 2022 audit plans
2021-11-15 04:30

Ransomware and the long-term effects of COVID-19 on markets and organizations are key items to cover in 2022 audit plans, according to a Gartner report. The report also identified evolving societal expectations for enterprises, such as environmental, social and governance risks, and operational resilience as top risk areas for 2022.

The long-term impacts of the pandemic on internal audit teams
2021-09-16 04:00

The survey polled more than 175 CAEs across a range of industries, uncovering five key trends respondents believe will have long-term impacts on internal audit teams - from an increased reliance on technology to innovative new ways of conducting audits. By all accounts, audit, risk, and compliance professionals have embraced video platforms not only for meetings between members of the internal audit staff, but also for meetings and other face-to-face interaction throughout the audit process and communications with key stakeholders.

Audit effectiveness and talent retention at risk as hybrid auditing becomes the new norm
2021-09-07 03:00

Audit functions that fail to adapt well to hybrid auditing risk a loss of effectiveness and influence at a time when real-time assurance has never been more vital to the wider organization, according to Gartner. With hybrid audit engagements here to stay for the foreseeable future, audit leaders must ensure audit processes are still effective and staff remain engaged.

Audit process or project changes leading to control gaps, creating risks
2021-08-12 03:00

"The problem, according to 95% of 135 chief audit executive we polled in February of this year, is that implementing a project or process change regularly leads to control gaps." "Audit leaders must firstly improve their visibility into changes happening in their organization and secondly develop the capability to deploy audit resources faster when changes arise."

Most companies still rely on manual tools and tech for internal audit processes
2021-07-21 03:30

Despite volatility of the risk landscape in the wake of the COVID-19 pandemic, most organizations still rely on manual tools and technologies for internal audit processes, a MetricStream survey reveals. The state of internal audit processes 67% of internal auditors have had to change their plans, and reprioritize audit activities during the pandemic.